Vulnerability Details CVE-2020-25780
In CommCell in Commvault before 14.68, 15.x before 15.58, 16.x before 16.44, 17.x before 17.29, and 18.x before 18.13, Directory Traversal can occur such that an attempt to view a log file can instead view a file outside of the log-files folder.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.415
EPSS Ranking 97.2%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 5.0
Products affected by CVE-2020-25780
-
cpe:2.3:a:commvault:commcell:*
-
cpe:2.3:a:commvault:commcell:11.22
-
cpe:2.3:a:commvault:commcell:11.22.22